PT-2012-4697 · Htcondor · Condor

Dan Bradley

+1

·

Published

2012-08-25

·

Updated

2023-02-13

·

CVE-2012-3416

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Condor versions prior to 7.8.2
Description The issue allows remote attackers to bypass host-based authentication and execute certain actions, such as ALLOW ADMINISTRATOR or ALLOW WRITE, by connecting from a system with a spoofed reverse DNS hostname.
Recommendations For versions prior to 7.8.2, update to version 7.8.2 or later to resolve the issue.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2012-3416
RHSA-2012:1168
RHSA-2012:1169

Affected Products

Condor